---
title: ISO/IEC 27001 Lead Implementer mind map
source: https://credentialpress.com/guides/iso-27001-lead-implementer-mind-map
tags: [iso-27001-lead-implementer, mindmap]
---

# ISO 27001 Lead Implementer, Handbook 1.5

## 1 Principles and concepts (15)
- Information security concepts
- Information vs assets
- Documents, specifications, records
- Vulnerability, threat, risk

## 2 ISMS requirements (12)
- Selecting and designing controls
- Security architecture
- Documenting implemented controls

## 3 Planning the implementation (18)
- Collecting and analysing information
- Information security and ISMS objectives
- ISMS risks and their impacts
- Internal and external context

## 4 Implementation (14)
- Capacity building
- Documentation and records management
- Documented information for conformity

## 5 Monitoring and measurement (10)
- Effectiveness of the ISMS
- Were objectives met?
- Internal audit program
- Regular reviews

## 6 Continual improvement (6)
- Nonconformities
- Root causes and action plans
- Improvement processes

## 7 Certification audit (5)
- Steps of the certification process
- Audit evidence approach
- Choosing a certification body
- Readiness for certification

## Mnemonic: Principles Require Planning, Implement, Measure, Improve, Certify
- **P** Principles and concepts
- **R** ISMS requirements
- **P** Planning the implementation
- **I** Implementation
- **M** Monitoring and measurement
- **I** Continual improvement
- **C** Certification audit
